CVE-2024-5865

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
02/07/2024
Last modified:
29/08/2024

Description

Vulnerability in Delinea Centrify PAS v. 21.3 and possibly others. The application is prone to the path traversal vulnerability allowing arbitrary files reading outside the web publish directory. Versions 23.1-HF7 and on have the patch.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:delinea:privileged_access_service:*:*:*:*:*:*:*:* 22.3 (including)